{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,8]],"date-time":"2026-05-08T22:19:48Z","timestamp":1778278788011,"version":"3.51.4"},"reference-count":17,"publisher":"IEEE Comput. Soc","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"DOI":"10.1109\/discex.2003.1194894","type":"proceedings-article","created":{"date-parts":[[2004,3,2]],"date-time":"2004-03-02T02:26:50Z","timestamp":1078194410000},"page":"303-314","source":"Crossref","is-referenced-by-count":298,"title":["Statistical approaches to DDoS attack detection and response"],"prefix":"10.1109","author":[{"given":"L.","family":"Feinstein","sequence":"first","affiliation":[]},{"given":"D.","family":"Schnackenberg","sequence":"additional","affiliation":[]},{"given":"R.","family":"Balupari","sequence":"additional","affiliation":[]},{"given":"D.","family":"Kindred","sequence":"additional","affiliation":[]}],"member":"263","reference":[{"key":"ref10","year":"0","journal-title":"Netflood Infosec Tools & Resources Source Code to Stacheldraht"},{"key":"ref11","article-title":"Linux Kernel Module Programming Guide","author":"pomerantz","year":"0"},{"key":"ref12","first-page":"353","article-title":"EMERALD: Event Monitoring Enabling Responses to Anomalous Live Distur-bances","author":"porras","year":"1997","journal-title":"Proceedings of the National Information Systems Security Conference (NISSC)"},{"key":"ref13","article-title":"Snort Users Manual: Snort Release 1.8.5","author":"roesch","year":"2002"},{"key":"ref14","first-page":"229","article-title":"Snort - Lightweight Intrusion Detection for Networks","author":"roesch","year":"1999","journal-title":"Proceedings of the 13th Systems Administration Conference (LISA'99) USENIX Association"},{"key":"ref15","article-title":"Linux Netfilter Hacking HOWTO","author":"russell","year":"0"},{"key":"ref16","first-page":"1003","article-title":"Infrastructure for Intrusion Detection and Response","author":"schnackenberg","year":"2000","journal-title":"DISCEX 2000"},{"key":"ref17","author":"shannon","year":"1963","journal-title":"The Mathematical Theory of Communication"},{"key":"ref4","article-title":"Linux Advanced Routing and Traffic Control HOWTO","author":"hubert","year":"0"},{"key":"ref3","article-title":"Statistics Collection for Network Traffic","author":"gil","year":"2002","journal-title":"United States Patent Application"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/775094.775102"},{"key":"ref5","volume":"2","author":"knuth","year":"1997","journal-title":"The Art of Computer Programming Semi-Numerical Algorithms"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/1132026.1132027"},{"key":"ref7","article-title":"Controlling High Bandwidth Aggregates in the Network","volume":"32","author":"manajan","year":"2002","journal-title":"SIGCOMM Computer Communications Review"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/316194.316229"},{"key":"ref1","article-title":"The &#x2018;Stacheldraht&#x2019; Distributed Denial of Service Attack Tool","author":"dittrich","year":"1999"},{"key":"ref9","article-title":"Linux Kernel Procfs Guide","author":"mouw","year":"0"}],"event":{"name":"DARPA Information Survivability Conference and Exposition","location":"Washington, DC, USA","acronym":"DISCEX-03"},"container-title":["Proceedings DARPA Information Survivability Conference and Exposition"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx5\/8503\/26875\/01194894.pdf?arnumber=1194894","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2017,3,13]],"date-time":"2017-03-13T22:08:30Z","timestamp":1489442910000},"score":1,"resource":{"primary":{"URL":"http:\/\/ieeexplore.ieee.org\/document\/1194894\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[null]]},"references-count":17,"URL":"https:\/\/doi.org\/10.1109\/discex.2003.1194894","relation":{},"subject":[]}}